Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9c9w-285g-2x4j

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Cross-site request forgery (CSRF) vulnerability in privmsg.php in phpBB 2.0.22 allows remote attackers to delete private messages (PM) as arbitrary users via a deleteall action.

Cross-site request forgery (CSRF) vulnerability in privmsg.php in phpBB 2.0.22 allows remote attackers to delete private messages (PM) as arbitrary users via a deleteall action.

EPSS

Процентиль: 47%
0.00242
Низкий

Дефекты

CWE-352

Связанные уязвимости

ubuntu
почти 18 лет назад

Cross-site request forgery (CSRF) vulnerability in privmsg.php in phpBB 2.0.22 allows remote attackers to delete private messages (PM) as arbitrary users via a deleteall action.

nvd
почти 18 лет назад

Cross-site request forgery (CSRF) vulnerability in privmsg.php in phpBB 2.0.22 allows remote attackers to delete private messages (PM) as arbitrary users via a deleteall action.

debian
почти 18 лет назад

Cross-site request forgery (CSRF) vulnerability in privmsg.php in phpB ...

EPSS

Процентиль: 47%
0.00242
Низкий

Дефекты

CWE-352